Home
LOW: 3.9 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:LDefault status
unaffected
2.2.5 (semver)
affected
4.5.0 (semver)
unaffected
Description
A race condition in the privilege toggle mechanism in Netatalk 2.2.5 through 4.4.2 allows a local attacker to obtain limited information, modify limited data, or cause a minor service disruption.
Problem types
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Product status
2.2.5 (semver)
4.5.0 (semver)
Credits
Arjun Basnet from Securin
References
netatalk.io/security/CVE-2026-44059 (Netatalk Security Advisory CVE-2026-44059)